MalKamak
MISP
Type:
Unknown
Unknown
Country:
IR
IR
First seen:
Unknown
Unknown
Details:
MalKamak is an Iranian threat actor that has been operating since at least 2018. They have been involved in highly targeted cyber espionage campaigns against global aerospace and telecommunications companies. MalKamak utilizes a sophisticated remote access Trojan called ShellClient, which evades antivirus tools and uses cloud services like Dropbox for command and control.
Metadata
| ID: | 537 |
| Created: | 13/01/2026 17:48 |
| Updated: | 07/03/2026 16:00 |